RPCBaseTests.swift 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324
  1. // Copyright 2023 Google LLC
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. import Foundation
  15. import XCTest
  16. @testable import FirebaseAuth
  17. @available(iOS 13, tvOS 13, macOS 10.15, macCatalyst 13, watchOS 7, *)
  18. class RPCBaseTests: XCTestCase {
  19. let kEmail = "user@company.com"
  20. let kFakePassword = "!@#$%^"
  21. let kDisplayName = "User Doe"
  22. let kLocalID = "testLocalId"
  23. let kFakeOobCode = "fakeOobCode"
  24. let kRefreshToken = "fakeRefreshToken"
  25. let kCustomToken = "CUSTOM_TOKEN"
  26. let kFakeEmailSignInLink = "https://test.app.goo.gl/?link=https://test.firebase" +
  27. "app.com/__/auth/action?apiKey%3DtestAPIKey%26mode%3DsignIn%26oobCode%3Dtestoobcode%26continueU" +
  28. "rl%3Dhttps://test.apps.com&ibi=com.test.com&ifl=https://test.firebaseapp.com/__/auth/" +
  29. "action?apiKey%3DtestAPIKey%26mode%3DsignIn%26oobCode%3Dtestoobcode%26continueUrl%3Dhttps://" +
  30. "test.apps.com"
  31. let kFakeEmailSignInDeeplink =
  32. "https://example.domain.com/?apiKey=testAPIKey&oobCode=testoobcode&mode=signIn"
  33. let kContinueURL = "continueURL"
  34. let kIosBundleID = "testBundleID"
  35. let kAndroidPackageName = "androidpackagename"
  36. let kAndroidMinimumVersion = "3.0"
  37. let kDynamicLinkDomain = "test.page.link"
  38. let kTestPhotoURL = "https://host.domain/image"
  39. let kCreationDateTimeIntervalInSeconds = 1_505_858_500.0
  40. let kLastSignInDateTimeIntervalInSeconds = 1_505_858_583.0
  41. let kTestPhoneNumber = "415-555-1234"
  42. static let kOAuthSessionID = "sessionID"
  43. static let kOAuthRequestURI = "requestURI"
  44. let kGoogleIDToken = "GOOGLE_ID_TOKEN"
  45. let kGoogleAccessToken = "GOOGLE_ACCESS_TOKEN"
  46. let kGoogleID = "GOOGLE_ID"
  47. let kGoogleEmail = "usergmail.com"
  48. let kGoogleDisplayName = "Google Doe"
  49. let kGoogleProfile = ["email": "usergmail.com", "given_name": "MyFirst", "family_name": "MyLast"]
  50. let kUserName = "User Doe"
  51. /** @var kTestAPIKey
  52. @brief Fake API key used for testing.
  53. */
  54. let kTestAPIKey = "APIKey"
  55. /** @var kTestFirebaseAppID
  56. @brief Fake Firebase app ID used for testing.
  57. */
  58. let kTestFirebaseAppID = "appID"
  59. /** @var kTestIdentifier
  60. @brief Fake identifier key used for testing.
  61. */
  62. let kTestIdentifier = "Identifier"
  63. var rpcIssuer: FakeBackendRPCIssuer!
  64. override func setUp() {
  65. rpcIssuer = FakeBackendRPCIssuer()
  66. AuthBackend.setTestRPCIssuer(issuer: rpcIssuer)
  67. }
  68. override func tearDown() {
  69. rpcIssuer = nil
  70. AuthBackend.resetRPCIssuer()
  71. }
  72. /** @fn checkRequest
  73. @brief Tests the encoding of a request.
  74. */
  75. func checkRequest(request: any AuthRPCRequest,
  76. expected: String,
  77. key: String,
  78. value: String?,
  79. checkPostBody: Bool = false) async throws {
  80. rpcIssuer.respondBlock = {
  81. XCTAssertEqual(self.rpcIssuer.requestURL?.absoluteString, expected)
  82. if checkPostBody {
  83. XCTAssertFalse(request.containsPostBody)
  84. } else if let requestDictionary = self.rpcIssuer.decodedRequest as? [String: AnyHashable] {
  85. XCTAssertEqual(requestDictionary[key], value)
  86. } else {
  87. XCTFail("decodedRequest is not a dictionary")
  88. }
  89. // Dummy response to unblock await.
  90. let _ = try self.rpcIssuer?.respond(withJSON: [:])
  91. }
  92. let _ = try await AuthBackend.call(with: request)
  93. }
  94. /** @fn checkBackendError
  95. @brief This test checks error messages from the backend map to the expected error codes
  96. */
  97. func checkBackendError(request: any AuthRPCRequest,
  98. message: String = "",
  99. reason: String? = nil,
  100. json: [String: AnyHashable]? = nil,
  101. errorCode: AuthErrorCode,
  102. errorReason: String? = nil,
  103. underlyingErrorKey: String? = nil,
  104. checkLocalizedDescription: String? = nil) async throws {
  105. rpcIssuer.respondBlock = {
  106. if let json = json {
  107. _ = try self.rpcIssuer.respond(withJSON: json)
  108. } else if let reason = reason {
  109. _ = try self.rpcIssuer.respond(underlyingErrorMessage: reason, message: message)
  110. } else {
  111. _ = try self.rpcIssuer.respond(serverErrorMessage: message)
  112. }
  113. }
  114. do {
  115. let _ = try await AuthBackend.call(with: request)
  116. XCTFail("Did not throw expected error")
  117. return
  118. } catch {
  119. let rpcError = error as NSError
  120. XCTAssertEqual(rpcError.code, errorCode.rawValue)
  121. if errorCode == .internalError {
  122. let underlyingError = try XCTUnwrap(rpcError.userInfo[NSUnderlyingErrorKey] as? NSError)
  123. XCTAssertNotNil(underlyingError.userInfo[AuthErrorUtils.userInfoDeserializedResponseKey])
  124. }
  125. if let errorReason {
  126. XCTAssertEqual(errorReason, rpcError.userInfo[NSLocalizedFailureReasonErrorKey] as? String)
  127. }
  128. if let checkLocalizedDescription {
  129. let localizedDescription = try XCTUnwrap(rpcError
  130. .userInfo[NSLocalizedDescriptionKey] as? String)
  131. XCTAssertEqual(checkLocalizedDescription, localizedDescription)
  132. }
  133. }
  134. }
  135. func makeRequestConfiguration() -> AuthRequestConfiguration {
  136. return AuthRequestConfiguration(
  137. apiKey: kTestAPIKey,
  138. appID: kTestFirebaseAppID
  139. )
  140. }
  141. static let kFakeAccessToken =
  142. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZDBhODBiYzh" +
  143. "jM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  144. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vZmItc2EtdXBncm" +
  145. "FkZWQiLCJhdWQiOiJ0ZXN0X2F1ZCIsImF1dGhfdGltZSI6MTUyMjM2MDU0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZCIs" +
  146. "InN1YiI6InRlc3Rfc3ViIiwiaWF0IjoxNTIyMzYwNTU3LCJleHAiOjE1MjIzNjQxNTcsImVtYWlsIjoiYXVuaXRlc3R1c2" +
  147. "VyQGdtYWlsLmNvbSIsImVtYWlsX3ZlcmlmaWVkIjpmYWxzZSwiZmlyZWJhc2UiOnsiaWRlbnRpdGllcyI6eyJlbWFpbCI6" +
  148. "WyJhdW5pdGVzdHVzZXJAZ21haWwuY29tIl19LCJzaWduX2luX3Byb3ZpZGVyIjoicGFzc3dvcmQifX0=." +
  149. "WFQqSrpVnxx7m" +
  150. "UrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  151. "BKkcbZuq8O7iDVpOvqKC" +
  152. "3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  153. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjN" +
  154. "hHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  155. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbW" +
  156. "lddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  157. static let kFakeAccessTokenLength415 =
  158. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZD" +
  159. "BhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  160. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vdGVzd" +
  161. "CIsImF1ZCI6InRlc3RfYXVkIiwiYXV0aF90aW1lIjoxNTIyMzYwNTQ5LCJ1c2VyX2lkIjoidGVzdF91c2VyX2lkIiwic3V" +
  162. "iIjoidGVzdF9zdWIiLCJpYXQiOjE1MjIzNjA1NTcsImV4cCI6MTUyMjM2NDE1NywiZW1haWwiOiJhdW5pdGVzdHVzZXJAZ" +
  163. "21haWwuY29tIiwiZW1haWxfdmVyaWZpZWQiOmZhbHNlLCJmaXJlYmFzZSI6eyJpZGVudGl0aWVzIjp7ImVtYWlsIjpbImF" +
  164. "1bml0ZXN0dXNlckBnbWFpbC5jb20iXX0sInNpZ25faW5fcHJvdmlkZXIiOiJwYXNzd29yZCJ9fQ=.WFQqSrpVnxx7m" +
  165. "UrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  166. "BKkcbZuq8O7iDVpOvqKC" +
  167. "3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  168. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjN" +
  169. "hHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  170. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbW" +
  171. "lddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  172. static let kFakeAccessTokenLength416 =
  173. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZD" +
  174. "BhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  175. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vdGVzd" +
  176. "DIiLCJhdWQiOiJ0ZXN0X2F1ZCIsImF1dGhfdGltZSI6MTUyMjM2MDU0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZCIsInN" +
  177. "1YiI6InRlc3Rfc3ViIiwiaWF0IjoxNTIyMzYwNTU3LCJleHAiOjE1MjIzNjQxNTcsImVtYWlsIjoiYXVuaXRlc3R1c2VyQ" +
  178. "GdtYWlsLmNvbSIsImVtYWlsX3ZlcmlmaWVkIjpmYWxzZSwiZmlyZWJhc2UiOnsiaWRlbnRpdGllcyI6eyJlbWFpbCI6WyJ" +
  179. "hdW5pdGVzdHVzZXJAZ21haWwuY29tIl19LCJzaWduX2luX3Byb3ZpZGVyIjoicGFzc3dvcmQifX0=.WFQqSrpVnxx7m" +
  180. "UrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  181. "BKkcbZuq8O7iDVpOvqKC" +
  182. "3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  183. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjN" +
  184. "hHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  185. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbW" +
  186. "lddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  187. static let kFakeAccessTokenLength523 =
  188. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZD" +
  189. "BhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  190. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vdGVzd" +
  191. "DQiLCJhdWQiOiJ0ZXN0X2F1ZCIsImF1dGhfdGltZSI6MTUyMjM2MDU0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZF81NDM" +
  192. "yIiwic3ViIjoidGVzdF9zdWIiLCJpYXQiOjE1MjIzNjA1NTcsImV4cCI6MTUyMjM2NDE1OSwiZW1haWwiOiJhdW5pdGVzd" +
  193. "HVzZXI0QGdtYWlsLmNvbSIsImVtYWlsX3ZlcmlmaWVkIjp0cnVlLCJmaXJlYmFzZSI6eyJpZGVudGl0aWVzIjp7ImVtYWl" +
  194. "sIjpbImF1bml0ZXN0dXNlckBnbWFpbC5jb20iXX0sInNpZ25faW5fcHJvdmlkZXIiOiJwYXNzd29yZCJ9fQ=." +
  195. "WFQqSrpVn" +
  196. "xx7mUrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  197. "BKkcbZuq8O7iDVpO" +
  198. "vqKC3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  199. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH" +
  200. "7jjNhHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  201. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqV" +
  202. "kPbWlddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  203. static let kFakeAccessTokenWithBase64 =
  204. "ey?hbGciOimnuzI1NiIsImtpZCI6ImY1YjE4M" +
  205. "jc2YTQ4NjYxZDBhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  206. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2ds" +
  207. "ZS5jb20vZmItc2EtdXBncmFkZWQiLCJhdWQiOiI_Pz8_Pz8_Pz8_Pj4-Pj4-Pj4-" +
  208. "PiIsImF1dGhfdGltZSI6MTUyMjM2MD" +
  209. "U0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZCIsInN1YiI6InRlc3Rfc3ViIiwiaWF0IjoxNTIyMzYwNTU3LCJleHAiOjE1" +
  210. "MjIzNjQxNTcsImVtYWlsIjoiPj4-Pj4-Pj4_Pz8_Pz8_" +
  211. "P0BnbWFpbC5jb20iLCJlbWFpbF92ZXJpZmllZCI6ZmFsc2UsIm" +
  212. "ZpcmViYXNlIjp7ImlkZW50aXRpZXMiOnsiZW1haWwiOlsiYXVuaXRlc3R1c2VyQGdtYWlsLmNvbSJdfSwic2lnbl9pbl9w" +
  213. "cm92aWRlciI6IlBhc3N3b3JkIn19.WFQqSrpVnxx7mUrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-" +
  214. "aTYMvND3-" +
  215. "4aS3qRnN2kvk9KJAaF3eI_BKkcbZuq8O7iDVpOvqKC3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  216. "XtBt" +
  217. "1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjNhHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  218. "dDV7" +
  219. "jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbWlddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  220. func setFakeSecureTokenService(fakeAccessToken: String = RPCBaseTests.kFakeAccessToken) {
  221. rpcIssuer?.fakeSecureTokenServiceJSON = ["access_token": fakeAccessToken,
  222. "expires_in": "3600"]
  223. }
  224. func setFakeGetAccountProvider(withNewDisplayName displayName: String = "User Doe",
  225. withLocalID localID: String = "testLocalId",
  226. withProviderID providerID: String = "testProviderID",
  227. withFederatedID federatedID: String = "testFederatedId",
  228. withEmail email: String = "user@company.com",
  229. withPasswordHash passwordHash: String? = nil) {
  230. let kProviderUserInfoKey = "providerUserInfo"
  231. let kPhotoUrlKey = "photoUrl"
  232. let kProviderIDkey = "providerId"
  233. let kDisplayNameKey = "displayName"
  234. let kFederatedIDKey = "federatedId"
  235. let kEmailKey = "email"
  236. let kPasswordHashKey = "passwordHash"
  237. let kTestPasswordHash = passwordHash
  238. let kEmailVerifiedKey = "emailVerified"
  239. let kLocalIDKey = "localId"
  240. rpcIssuer?.fakeGetAccountProviderJSON = [[
  241. kProviderUserInfoKey: [[
  242. kProviderIDkey: providerID,
  243. kDisplayNameKey: displayName,
  244. kPhotoUrlKey: kTestPhotoURL,
  245. kFederatedIDKey: federatedID,
  246. kEmailKey: email,
  247. ]],
  248. kLocalIDKey: localID,
  249. kDisplayNameKey: displayName,
  250. kEmailKey: email,
  251. kPhotoUrlKey: kTestPhotoURL,
  252. kEmailVerifiedKey: true,
  253. kPasswordHashKey: kTestPasswordHash,
  254. "phoneNumber": kTestPhoneNumber,
  255. ]]
  256. }
  257. func setFakeGoogleGetAccountProvider() {
  258. setFakeGetAccountProvider(withNewDisplayName: kGoogleDisplayName,
  259. withProviderID: GoogleAuthProvider.id,
  260. withFederatedID: kGoogleID,
  261. withEmail: kGoogleEmail)
  262. }
  263. func setFakeGetAccountProviderAnonymous() {
  264. let kPasswordHashKey = "passwordHash"
  265. let kTestPasswordHash = "testPasswordHash"
  266. let kLocalIDKey = "localId"
  267. rpcIssuer?.fakeGetAccountProviderJSON = [[
  268. kLocalIDKey: kLocalID,
  269. kPasswordHashKey: kTestPasswordHash,
  270. ]]
  271. }
  272. func fakeActionCodeSettings() -> ActionCodeSettings {
  273. let settings = ActionCodeSettings()
  274. settings.iOSBundleID = kIosBundleID
  275. settings.setAndroidPackageName(kAndroidPackageName,
  276. installIfNotAvailable: true,
  277. minimumVersion: kAndroidMinimumVersion)
  278. settings.handleCodeInApp = true
  279. settings.url = URL(string: kContinueURL)
  280. settings.dynamicLinkDomain = kDynamicLinkDomain
  281. return settings
  282. }
  283. func assertUserGoogle(_ user: User?) throws {
  284. let user = try XCTUnwrap(user)
  285. XCTAssertEqual(user.uid, kLocalID)
  286. XCTAssertEqual(user.displayName, kGoogleDisplayName)
  287. XCTAssertEqual(user.providerData.count, 1)
  288. let googleUserInfo = user.providerData[0]
  289. XCTAssertEqual(googleUserInfo.providerID, GoogleAuthProvider.id)
  290. XCTAssertEqual(googleUserInfo.uid, kGoogleID)
  291. XCTAssertEqual(googleUserInfo.displayName, kGoogleDisplayName)
  292. XCTAssertEqual(googleUserInfo.email, kGoogleEmail)
  293. }
  294. /// Sleep long enough for pending async task to start.
  295. static func waitSleep() {
  296. usleep(10000)
  297. }
  298. }